HACKER Q&A
📣 beervirus

Do you use Plaid and give them your banking login info?


It seems like such a horrible idea. I want to send money (to buy a Tesla, or to fund a Coinbase account, or whatever), and so I have to... give a random company the login credentials for my bank? Give them access to all of my business and personal accounts, all of my children's accounts, CDs, IRAs, etc.

It's FAR more than they need. To this day I don't understand why anyone would use Plaid.


  👤 hentrep Accepted Answer ✓
Episode 211 of The Privacy Security & OSINT podcast did a pretty thorough analysis of the data collected by Plaid. Highly recommend a listen: https://inteltechniques.com/blog/2021/03/26/the-privacy-secu...

👤 igammarays
The system is awful but that’s what you’re stuck with in the US. In Europe open banking is regulated, so banks have to provide an oath-like API, often no credential sharing involved.

I run a fintech startup, and as ridiculously insecure as the Plaid model is, there is huge demand for it. Customers want to extract their transaction data and there is no good interbank payment system in the US.

I live in the Ukraine at the moment and the interbank payment system is far better here. Anyone can send money instantly to anyone else just by knowing their account number. The transfer fee is stated up front in the mobile app, and the transfer is instantaneous. Large amounts are protected by a 2FA approval notification, and you may receive a call from your bank. Businesses regularly accept payments through it as well.


👤 goatcode
>it seems like such a horrible idea

It probably is.

> To this day I don't understand why anyone would use Plaid.

It's more desirable to use a fin-tech company to handle all that than take on the liability yourself, as a company wanting to receive payments (or connect to transaction info, like a lot of the popular budgeting apps do).


👤 mcintyre1994
I’ve never been asked to provide access to my bank to buy anything, that sounds like insane overreach. There are budgeting apps that ask for it but I don’t use any of them. My main bank account provides webhooks for transactions which I use for my budgeting app, that works well enough for me.

👤 saluki
y, it sounds like a bad idea to me.

I have never understood why don't banks offer READ ONLY api/access to accounts for 3rd budgeting apps/expense trackers or even verifying you for a mortgage.


👤 Graffur
nope. Considered creating a budget app that would need a service like Plaid but I just think it's the wrong approach so won't use it.

👤 kjjjjjjjjjjjjjj
Privacy.com uses it, I used it. You really don't have much of a choice.